CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60159  CVE-2013-0212  Candidate  store/swift.py in OpenStack Glance Essex (2012.1), Folsom (2012.2) before 2012.2.3, and Grizzly, when in Swift single tenant mode, logs the Swift endpoint"s user name and password in cleartext when the endpoint is misconfigured or unusable, allows remote authenticated users to obtain sensitive information by reading the error messages.  Assigned (20121206)  None (candidate not yet proposed)    View
60415  CVE-2013-0468  Candidate  Cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2013-2983.  Assigned (20121216)  None (candidate not yet proposed)    View
60671  CVE-2013-0724  Candidate  PHP remote file inclusion vulnerability in includes/generate-pdf.php in the WP ecommerce Shop Styling plugin for WordPress before 1.8 allows remote attackers to execute arbitrary PHP code via a URL in the dompdf parameter.  Assigned (20130102)  None (candidate not yet proposed)    View
60927  CVE-2013-0980  Candidate  The Passcode Lock implementation in Apple iOS before 6.1.3 does not properly manage the lock state, which allows physically proximate attackers to bypass an intended passcode requirement by leveraging an error in the emergency-call feature.  Assigned (20130110)  None (candidate not yet proposed)    View
61183  CVE-2013-1236  Candidate  Cisco TelePresence Supervisor MSE 8050 before 2.3(1.31) allows remote attackers to cause a denial of service (CPU consumption or device reload) by establishing TCP connections at a high rate, aka Bug IDs CSCuf76076 and CSCuf79763.  Assigned (20130111)  None (candidate not yet proposed)    View

Page 20329 of 20943, showing 5 records out of 104715 total, starting on record 101641, ending on 101645

Actions